I can't put my finger on it, but after looking at this article on the mystery of the Duqu Framework, and looking at my publicly posted decompilation of Linux/Bckdr-RKC, something strikes me as very familiar between the two.
I've sent this to Kaspersky, so we'll see if they get back to me on it.
Can you see any similarities? If so, please share!
UPDATE: The virus in question is now being detected by limited AV programs as the "Hutizu" backdoor.
No comments:
Post a Comment